IP Library Granted Patent US 8,781,975
Granted Patent B2
US 8,781,975 · App. 11/134,479 · Granted Jul 15, 2014

System and method of fraud reduction

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,781,975
App. No.
11/134,479
Granted
Jul 15, 2014
Kind
B2
Abstract

A system and method may allow for extending authentication to a two factor, out of band form, requiring an additional data element or code via a channel different from the channel used for the primary transaction, where the different channel has the attribute that it is difficult or costly to achieve many access points to it, and it is possible to limit the number of users associated with a particular access point to it.

Claims (53)

1. A computerized method of authenticating a user participating in an electronic transaction, the method comprising:

receiving, by a first computer, a request by a user on a second computer to participate in an electronic transaction;

obtaining, by the first computer, a transaction risk level related to the transaction;

comparing, by the first computer, the transaction risk level of the transaction to the obtained threshold risk level;

determining, by the first computer, whether the obtained transaction risk level of the transaction is less than the received threshold risk level or greater than the received threshold risk level;

based on the determining that the obtained transaction risk level of the transaction is less than the received threshold risk level, completing the user requested transaction;

based on the determining that the obtained transaction risk level of the transaction is greater than the received threshold risk level, the method further comprises:

generating a data element;

transmitting, by the first computer, the data element to said user via a first electronic communication channel;

receiving, by the first computer, the data element from the user via a second electronic communication channel;

determining, by the first computer, that the data element transmitted via the first communication channel matches the data element received via the second communication channel;

completing the electronic transaction by the user;

storing, by the first computer, a list of user IDs in a cookie;

sending, by the first computer, the cookie to the second computer;

determining, by the first computer, a successive login attempt by the user; and

based on the determining of successive login attempt, reading the cookie and checking a user ID of the user against the list of user IDs stored in the cookie.

2. The method of claim 1 , wherein the data element is a code.

3. The method of claim 1 , wherein one of the communication channels is the Internet.

4. The method of claim 1 , wherein the identity of one of the communication channels is provided by the user.

5. The method of claim 1 , wherein the one of the communication channels is a telephone connection.

6. The method of claim 1 , wherein one of the communication channels is an email connection.

7. The method of claim 1 , wherein transaction is a financial transaction.

8. The method of claim 1 , wherein one communication channel is the Internet and the other communication channel is a telephone connection.

9. The method of claim 1 , wherein the one of the communication channels is used to perform the transaction.

10. The method of claim 1 , comprising initiating contact with the user via the one of the communication channels.

11. A system for authenticating an electronic transaction with a user, the system comprising:

a first computer having a processor;

computer readable instructions stored on a non-transitory medium, which, when executed by the processor, causes the processor to perform the acts of:

receiving, by the first computer, a request by a user on a second computer to participate in an electronic transaction;

obtaining, by the first computer, a transaction risk level related to the transaction;

comparing, by the first computer, the transaction risk level of the transaction to the obtained threshold risk level;

determining, by the first computer, whether the obtained transaction risk level of the transaction is less than the received threshold risk level or greater than the received threshold risk level;

based on the determining that the obtained transaction risk level of the transaction is less than the received threshold risk level, completing the user requested transaction;

based on the determining that the obtained transaction risk level of the transaction is greater than the received threshold risk level, the method further comprises:

generating a data element;

transmitting, by the first computer, the data element to said user via a first electronic communication channel;

receiving, by the first computer, the data element from the user via a second electronic communication channel;

determining, by the first computer, that the data element transmitted via the first communication channel matches the data element received via the second communication channel;

completing the electronic transaction by the user;

storing, by the first computer, a list of user IDs in a cookie;

sending, by the first computer, the cookie to the second computer;

determining, by the first computer, a successive login attempt by the user; and

based on the determining of successive login attempt, reading the cookie and checking a user ID of the user against the list of user IDs stored in the cookie.

12. The system of claim 11 , wherein the data element is a code.

13. The system of claim 11 , wherein one communication channel is the Internet.

14. The system of claim 11 , wherein the identity of one of the communication channels is provided by the user.

15. The system of claim 11 , wherein one communication channel is a telephone connection.

16. The system in claim 11 , wherein the processor further performs the acts of limiting the number of users enabled to use a specific access point to one of the communication channels.

17. The method of claim 1 , further comprising, prior to completing the electronic transaction:

checking whether an access point to the second communication channel is younger than a predetermined number of days; and

invalidating the access point to the second communication channel in response to the access point being younger than the predetermined number of days.

18. The method of claim 1 , further comprising, on one of the successive login attempts, completing the requested transaction without using the second electronic communication channel after determining that the transaction risk level of the transaction is greater than the threshold risk level when the user ID of the user is found in the cookie.

19. The method of claim 18 , further comprising, on another of the successive login attempts, completing the requested transaction without using the second electronic communication channel after determining that the transaction risk level of the transaction is greater than the threshold risk level when the user of the second computer has successfully authenticated from the second computer in the recent past.

Assignments (15)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (045455/0001) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061753/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040136/0001) Recorded Apr 26, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061324/0001 →
RELEASE OF SECURITY INTEREST Recorded Nov 3, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL USA L.P.; ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL, L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 058216/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 29, 2016
From: EMC CORPORATION
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 040203/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040134/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040136/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 23, 2010
From: RSA SECURITY LLC
To: RSA SECURITY HOLDING, INC.
Reel/Frame 023975/0453 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 23, 2010
From: RSA SECURITY HOLDING, INC.
To: EMC CORPORATION
Reel/Frame 023975/0151 →
MERGER Recorded Jan 27, 2010
From: RSA SECURITY INC
To: RSA SECURITY LLC
Reel/Frame 023852/0644 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 21, 2010
From: RSA SECURITY HOLDING, INC.
To: EMC CORPORATION
Reel/Frame 023825/0109 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 21, 2010
From: RSA SECURITY LLC
To: RSA SECURITY HOLDING, INC.
Reel/Frame 023824/0729 →
CORRECTIVE COVERSHEET TO CORRECT THE ASSIGNEE'S NAME PREVIOUSLY RECORDED ON REEL 016894, FRAME 0220. Recorded May 22, 2006
From: BENNETT, NAFTALI; GOLAN, LIOR; RIVNER, NIRA
To: CYOTA INC.
Reel/Frame 017659/0306 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 16, 2005
From: BENNETT, NAFTALI; GOLAN, LIOR; RIVNER, NIRA
To: CYOIA INC.
Reel/Frame 016894/0220 →